URLhaus Database

You are currently viewing the URLhaus database entry for http://87.121.221.212/damianozx.doc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2682451
URL: http://87.121.221.212/damianozx.doc
URL Status:Offline
Host: 87.121.221.212
Date added:2023-07-14 07:52:03 UTC
Last online:2023-07-26 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-07-14 07:53:08 UTC to abuse{at}des[dot]capital)
Takedown time:11 days, 23 hours, 37 minutes Bad (down since 2023-07-26 07:30:17 UTC)
Tags:AgentTesla link doc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-26n/artf 9a93faf5e2655e6be04da3a195d6221636a6adeba3c65df56f2fbd5ec77b1f3fn/aAgentTesla
2023-07-24n/artf 63b80f917e968fe46f8c892d725e7bf65236681e8b9d864e141a4ca0aadd8abfn/aAgentTesla
2023-07-24n/artf c558594449951e47d10c610b0c328a08d69f86dc964448766cab0d69987e0000n/aAgentTesla
2023-07-18n/artf 47811af505eb2a00016a2c9e5507ee4e8b99f5d756304582bd7ed5733f8404efVirustotal results 47.46%AgentTesla
2023-07-18n/artf 314ebae4b7fc2a469b7de3aea6246db22cc31f2e7ee443b6126cee0b8a10566an/aAgentTesla
2023-07-14n/artf 881fe49975983296d63d3a5c39674da11f0b48d1ddc4947b4de2047032b7cc21Virustotal results 47.46%AgentTesla